Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-3019

Опубликовано: 01 июн. 2023
Источник: redhat
CVSS3: 6

Описание

A DMA reentrancy issue leading to a use-after-free error was found in the e1000e NIC emulation code in QEMU. This issue could allow a privileged guest user to crash the QEMU process on the host, resulting in a denial of service.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6qemu-kvmOut of support scope
Red Hat Enterprise Linux 7qemu-kvmOut of support scope
Red Hat Enterprise Linux 7qemu-kvm-maOut of support scope
Red Hat Enterprise Linux 8 Advanced Virtualizationvirt:av/qemu-kvmWill not fix
Red Hat Enterprise Linux 8virt-develFixedRHSA-2024:013510.01.2024
Red Hat Enterprise Linux 8virtFixedRHSA-2024:013510.01.2024
Red Hat Enterprise Linux 8.6 Extended Update Supportvirt-develFixedRHSA-2024:040425.01.2024
Red Hat Enterprise Linux 8.6 Extended Update SupportvirtFixedRHSA-2024:040425.01.2024
Red Hat Enterprise Linux 8.8 Extended Update Supportvirt-develFixedRHSA-2024:056930.01.2024
Red Hat Enterprise Linux 8.8 Extended Update SupportvirtFixedRHSA-2024:056930.01.2024

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-416
https://bugzilla.redhat.com/show_bug.cgi?id=2222351QEMU: e1000e: heap use-after-free in e1000e_write_packet_to_guest()

6 Medium

CVSS3

Связанные уязвимости

CVSS3: 6
ubuntu
почти 2 года назад

A DMA reentrancy issue leading to a use-after-free error was found in the e1000e NIC emulation code in QEMU. This issue could allow a privileged guest user to crash the QEMU process on the host, resulting in a denial of service.

CVSS3: 6
nvd
почти 2 года назад

A DMA reentrancy issue leading to a use-after-free error was found in the e1000e NIC emulation code in QEMU. This issue could allow a privileged guest user to crash the QEMU process on the host, resulting in a denial of service.

CVSS3: 6.5
msrc
2 месяца назад

Описание отсутствует

CVSS3: 6
debian
почти 2 года назад

A DMA reentrancy issue leading to a use-after-free error was found in ...

CVSS3: 6
github
почти 2 года назад

A DMA reentrancy issue leading to a use-after-free error was found in the e1000e NIC emulation code in QEMU. This issue could allow a privileged guest user to crash the QEMU process on the host, resulting in a denial of service.

6 Medium

CVSS3